This workshop provides hands-on experience managing a complete vulnerability lifecycle — from CVE detection through automated containment to compliant container delivery — using Red Hat Ansible Automation Platform. Participants respond to a critical CVE alert on a production RHEL application server, using AAP Controller, Event-Driven Ansible (EDA), and integrations with Splunk (SIEM) and Open Policy Agent (OPA) to defend, patch, and prove compliance without manual intervention.
NOTE
Complete the modules in order — each builds on the previous one.
| Resource | Link |
|---|---|
| Workshop content and exercises | rhpds.github.io/zt-ans-defend-contain-comply |
| Follow-up assets | TO DO |
| Post-event survey | TO DO |
| Certain registration page & promotional email copy | TO DO |
| Presenter instructions and guide | TO DO |
| Certain event banners | TO DO |
This workshop is intended for security and operations teams who need to automate vulnerability response, policy-gated remediation, and compliance hardening with Ansible Automation Platform. Attendees will work with Event-Driven Ansible, Open Policy Agent (OPA), Splunk, and Ansible Automation Platform workflows in a realistic CVE management scenario.
There is no student prep work required prior to the workshop. It is recommended to complete the free Red Hat training course Ansible Basics: Automation Technical Overview.
Labs are available via the Red Hat Demo Platform under the Defend, Contain, Comply catalog item.
| Activity | Link | Estimated Time |
|---|---|---|
| Workshop Overview | 📖 View Overview | ⏱️ 10 minutes |
| Slides: Introduction + Workshop Brief | TO DO | ⏱️ 10 minutes |
| Module 1: DEFEND — Detect and Contain | 🚀 Launch Exercise | ⏱️ 40 minutes |
| Slides: Brief for Module 2 | TO DO | ⏱️ 5 minutes |
| Module 2: CONTAIN — Policy-Gated Remediation | 🚀 Launch Exercise | ⏱️ 40 minutes |
| Slides: Brief for Module 3 | TO DO | ⏱️ 5 minutes |
| Module 3: COMPLY — Audit, Harden, Deliver | 🚀 Launch Exercise | ⏱️ 40 minutes |
| Conclusion | 📖 View Conclusion | ⏱️ 10 minutes |
Individual modules from this workshop can be used as standalone demos for vulnerability detection and containment, policy-gated patching, or compliance hardening scenarios.
Additional collateral for security automation:
| Title | Link |
|---|---|
| Implementing Zero Trust with Ansible Automation Platform | Zero Trust workshop |
| Security automation collateral | TO DO |
This is an official Ansible Workshop
This workshop is maintained by the Red Hat Ansible Technical Marketing Team. Please open an issues on Github
